OpenSSL Security Advisory [30 July 2002]
[openssl.git] / crypto / asn1 / asn1_lib.c
1 /* crypto/asn1/asn1_lib.c */
2 /* Copyright (C) 1995-1998 Eric Young (eay@cryptsoft.com)
3  * All rights reserved.
4  *
5  * This package is an SSL implementation written
6  * by Eric Young (eay@cryptsoft.com).
7  * The implementation was written so as to conform with Netscapes SSL.
8  * 
9  * This library is free for commercial and non-commercial use as long as
10  * the following conditions are aheared to.  The following conditions
11  * apply to all code found in this distribution, be it the RC4, RSA,
12  * lhash, DES, etc., code; not just the SSL code.  The SSL documentation
13  * included with this distribution is covered by the same copyright terms
14  * except that the holder is Tim Hudson (tjh@cryptsoft.com).
15  * 
16  * Copyright remains Eric Young's, and as such any Copyright notices in
17  * the code are not to be removed.
18  * If this package is used in a product, Eric Young should be given attribution
19  * as the author of the parts of the library used.
20  * This can be in the form of a textual message at program startup or
21  * in documentation (online or textual) provided with the package.
22  * 
23  * Redistribution and use in source and binary forms, with or without
24  * modification, are permitted provided that the following conditions
25  * are met:
26  * 1. Redistributions of source code must retain the copyright
27  *    notice, this list of conditions and the following disclaimer.
28  * 2. Redistributions in binary form must reproduce the above copyright
29  *    notice, this list of conditions and the following disclaimer in the
30  *    documentation and/or other materials provided with the distribution.
31  * 3. All advertising materials mentioning features or use of this software
32  *    must display the following acknowledgement:
33  *    "This product includes cryptographic software written by
34  *     Eric Young (eay@cryptsoft.com)"
35  *    The word 'cryptographic' can be left out if the rouines from the library
36  *    being used are not cryptographic related :-).
37  * 4. If you include any Windows specific code (or a derivative thereof) from 
38  *    the apps directory (application code) you must include an acknowledgement:
39  *    "This product includes software written by Tim Hudson (tjh@cryptsoft.com)"
40  * 
41  * THIS SOFTWARE IS PROVIDED BY ERIC YOUNG ``AS IS'' AND
42  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
43  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
44  * ARE DISCLAIMED.  IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
45  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
46  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
47  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
48  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
49  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
50  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
51  * SUCH DAMAGE.
52  * 
53  * The licence and distribution terms for any publically available version or
54  * derivative of this code cannot be changed.  i.e. this code cannot simply be
55  * copied and put under another distribution licence
56  * [including the GNU Public Licence.]
57  */
58
59 #include <stdio.h>
60 #include "cryptlib.h"
61 #include <openssl/asn1.h>
62 #include <openssl/asn1_mac.h>
63
64 static int asn1_get_length(unsigned char **pp,int *inf,long *rl,int max);
65 static void asn1_put_length(unsigned char **pp, int length);
66 const char *ASN1_version="ASN.1" OPENSSL_VERSION_PTEXT;
67
68 int ASN1_check_infinite_end(unsigned char **p, long len)
69         {
70         /* If there is 0 or 1 byte left, the length check should pick
71          * things up */
72         if (len <= 0)
73                 return(1);
74         else if ((len >= 2) && ((*p)[0] == 0) && ((*p)[1] == 0))
75                 {
76                 (*p)+=2;
77                 return(1);
78                 }
79         return(0);
80         }
81
82
83 int ASN1_get_object(unsigned char **pp, long *plength, int *ptag, int *pclass,
84              long omax)
85         {
86         int i,ret;
87         long l;
88         unsigned char *p= *pp;
89         int tag,xclass,inf;
90         long max=omax;
91
92         if (!max) goto err;
93         ret=(*p&V_ASN1_CONSTRUCTED);
94         xclass=(*p&V_ASN1_PRIVATE);
95         i= *p&V_ASN1_PRIMITIVE_TAG;
96         if (i == V_ASN1_PRIMITIVE_TAG)
97                 {               /* high-tag */
98                 p++;
99                 if (--max == 0) goto err;
100                 l=0;
101                 while (*p&0x80)
102                         {
103                         l<<=7L;
104                         l|= *(p++)&0x7f;
105                         if (--max == 0) goto err;
106                         }
107                 l<<=7L;
108                 l|= *(p++)&0x7f;
109                 tag=(int)l;
110                 }
111         else
112                 { 
113                 tag=i;
114                 p++;
115                 if (--max == 0) goto err;
116                 }
117         *ptag=tag;
118         *pclass=xclass;
119         if (!asn1_get_length(&p,&inf,plength,(int)max)) goto err;
120
121 #if 0
122         fprintf(stderr,"p=%d + *plength=%ld > omax=%ld + *pp=%d  (%d > %d)\n", 
123                 (int)p,*plength,omax,(int)*pp,(int)(p+ *plength),
124                 (int)(omax+ *pp));
125
126 #endif
127         if (*plength > (omax - (*pp - p)))
128                 {
129                 ASN1err(ASN1_F_ASN1_GET_OBJECT,ASN1_R_TOO_LONG);
130                 /* Set this so that even if things are not long enough
131                  * the values are set correctly */
132                 ret|=0x80;
133                 }
134         *pp=p;
135         return(ret|inf);
136 err:
137         ASN1err(ASN1_F_ASN1_GET_OBJECT,ASN1_R_HEADER_TOO_LONG);
138         return(0x80);
139         }
140
141 static int asn1_get_length(unsigned char **pp, int *inf, long *rl, int max)
142         {
143         unsigned char *p= *pp;
144         long ret=0;
145         int i;
146
147         if (max-- < 1) return(0);
148         if (*p == 0x80)
149                 {
150                 *inf=1;
151                 ret=0;
152                 p++;
153                 }
154         else
155                 {
156                 *inf=0;
157                 i= *p&0x7f;
158                 if (*(p++) & 0x80)
159                         {
160                         if (i > sizeof(long))
161                                 return 0;
162                         if (max-- == 0) return(0);
163                         while (i-- > 0)
164                                 {
165                                 ret<<=8L;
166                                 ret|= *(p++);
167                                 if (max-- == 0) return(0);
168                                 }
169                         }
170                 else
171                         ret=i;
172                 }
173         if (ret < 0)
174                 return 0;
175         *pp=p;
176         *rl=ret;
177         return(1);
178         }
179
180 /* class 0 is constructed
181  * constructed == 2 for indefinite length constructed */
182 void ASN1_put_object(unsigned char **pp, int constructed, int length, int tag,
183              int xclass)
184         {
185         unsigned char *p= *pp;
186         int i, ttag;
187
188         i=(constructed)?V_ASN1_CONSTRUCTED:0;
189         i|=(xclass&V_ASN1_PRIVATE);
190         if (tag < 31)
191                 *(p++)=i|(tag&V_ASN1_PRIMITIVE_TAG);
192         else
193                 {
194                 *(p++)=i|V_ASN1_PRIMITIVE_TAG;
195                 for(i = 0, ttag = tag; ttag > 0; i++) ttag >>=7;
196                 ttag = i;
197                 while(i-- > 0)
198                         {
199                         p[i] = tag & 0x7f;
200                         if(i != (ttag - 1)) p[i] |= 0x80;
201                         tag >>= 7;
202                         }
203                 p += ttag;
204                 }
205         if ((constructed == 2) && (length == 0))
206                 *(p++)=0x80; /* der_put_length would output 0 instead */
207         else
208                 asn1_put_length(&p,length);
209         *pp=p;
210         }
211
212 static void asn1_put_length(unsigned char **pp, int length)
213         {
214         unsigned char *p= *pp;
215         int i,l;
216         if (length <= 127)
217                 *(p++)=(unsigned char)length;
218         else
219                 {
220                 l=length;
221                 for (i=0; l > 0; i++)
222                         l>>=8;
223                 *(p++)=i|0x80;
224                 l=i;
225                 while (i-- > 0)
226                         {
227                         p[i]=length&0xff;
228                         length>>=8;
229                         }
230                 p+=l;
231                 }
232         *pp=p;
233         }
234
235 int ASN1_object_size(int constructed, int length, int tag)
236         {
237         int ret;
238
239         ret=length;
240         ret++;
241         if (tag >= 31)
242                 {
243                 while (tag > 0)
244                         {
245                         tag>>=7;
246                         ret++;
247                         }
248                 }
249         if ((length == 0) && (constructed == 2))
250                 ret+=2;
251         ret++;
252         if (length > 127)
253                 {
254                 while (length > 0)
255                         {
256                         length>>=8;
257                         ret++;
258                         }
259                 }
260         return(ret);
261         }
262
263 int asn1_Finish(ASN1_CTX *c)
264         {
265         if ((c->inf == (1|V_ASN1_CONSTRUCTED)) && (!c->eos))
266                 {
267                 if (!ASN1_check_infinite_end(&c->p,c->slen))
268                         {
269                         c->error=ERR_R_MISSING_ASN1_EOS;
270                         return(0);
271                         }
272                 }
273         if (    ((c->slen != 0) && !(c->inf & 1)) ||
274                 ((c->slen < 0) && (c->inf & 1)))
275                 {
276                 c->error=ERR_R_ASN1_LENGTH_MISMATCH;
277                 return(0);
278                 }
279         return(1);
280         }
281
282 int asn1_GetSequence(ASN1_CTX *c, long *length)
283         {
284         unsigned char *q;
285
286         q=c->p;
287         c->inf=ASN1_get_object(&(c->p),&(c->slen),&(c->tag),&(c->xclass),
288                 *length);
289         if (c->inf & 0x80)
290                 {
291                 c->error=ERR_R_BAD_GET_ASN1_OBJECT_CALL;
292                 return(0);
293                 }
294         if (c->tag != V_ASN1_SEQUENCE)
295                 {
296                 c->error=ERR_R_EXPECTING_AN_ASN1_SEQUENCE;
297                 return(0);
298                 }
299         (*length)-=(c->p-q);
300         if (c->max && (*length < 0))
301                 {
302                 c->error=ERR_R_ASN1_LENGTH_MISMATCH;
303                 return(0);
304                 }
305         if (c->inf == (1|V_ASN1_CONSTRUCTED))
306                 c->slen= *length+ *(c->pp)-c->p;
307         c->eos=0;
308         return(1);
309         }
310
311 ASN1_STRING *ASN1_STRING_dup(ASN1_STRING *str)
312         {
313         ASN1_STRING *ret;
314
315         if (str == NULL) return(NULL);
316         if ((ret=ASN1_STRING_type_new(str->type)) == NULL)
317                 return(NULL);
318         if (!ASN1_STRING_set(ret,str->data,str->length))
319                 {
320                 ASN1_STRING_free(ret);
321                 return(NULL);
322                 }
323         ret->flags = str->flags;
324         return(ret);
325         }
326
327 int ASN1_STRING_set(ASN1_STRING *str, const void *_data, int len)
328         {
329         unsigned char *c;
330         const char *data=_data;
331
332         if (len < 0)
333                 {
334                 if (data == NULL)
335                         return(0);
336                 else
337                         len=strlen(data);
338                 }
339         if ((str->length < len) || (str->data == NULL))
340                 {
341                 c=str->data;
342                 if (c == NULL)
343                         str->data=OPENSSL_malloc(len+1);
344                 else
345                         str->data=OPENSSL_realloc(c,len+1);
346
347                 if (str->data == NULL)
348                         {
349                         str->data=c;
350                         return(0);
351                         }
352                 }
353         str->length=len;
354         if (data != NULL)
355                 {
356                 memcpy(str->data,data,len);
357                 /* an allowance for strings :-) */
358                 str->data[len]='\0';
359                 }
360         return(1);
361         }
362
363 ASN1_STRING *ASN1_STRING_new(void)
364         {
365         return(ASN1_STRING_type_new(V_ASN1_OCTET_STRING));
366         }
367
368
369 ASN1_STRING *ASN1_STRING_type_new(int type)
370         {
371         ASN1_STRING *ret;
372
373         ret=(ASN1_STRING *)OPENSSL_malloc(sizeof(ASN1_STRING));
374         if (ret == NULL)
375                 {
376                 ASN1err(ASN1_F_ASN1_STRING_TYPE_NEW,ERR_R_MALLOC_FAILURE);
377                 return(NULL);
378                 }
379         ret->length=0;
380         ret->type=type;
381         ret->data=NULL;
382         ret->flags=0;
383         return(ret);
384         }
385
386 void ASN1_STRING_free(ASN1_STRING *a)
387         {
388         if (a == NULL) return;
389         if (a->data != NULL) OPENSSL_free(a->data);
390         OPENSSL_free(a);
391         }
392
393 int ASN1_STRING_cmp(ASN1_STRING *a, ASN1_STRING *b)
394         {
395         int i;
396
397         i=(a->length-b->length);
398         if (i == 0)
399                 {
400                 i=memcmp(a->data,b->data,a->length);
401                 if (i == 0)
402                         return(a->type-b->type);
403                 else
404                         return(i);
405                 }
406         else
407                 return(i);
408         }
409
410 void asn1_add_error(unsigned char *address, int offset)
411         {
412         char buf1[DECIMAL_SIZE(address)+1],buf2[DECIMAL_SIZE(offset)+1];
413
414         sprintf(buf1,"%lu",(unsigned long)address);
415         sprintf(buf2,"%d",offset);
416         ERR_add_error_data(4,"address=",buf1," offset=",buf2);
417         }
418
419 int ASN1_STRING_length(ASN1_STRING *x)
420 { return M_ASN1_STRING_length(x); }
421
422 void ASN1_STRING_length_set(ASN1_STRING *x, int len)
423 { M_ASN1_STRING_length_set(x, len); return; }
424
425 int ASN1_STRING_type(ASN1_STRING *x)
426 { return M_ASN1_STRING_type(x); }
427
428 unsigned char * ASN1_STRING_data(ASN1_STRING *x)
429 { return M_ASN1_STRING_data(x); }